You may be trying to access this site from a secured browser on the server. Please enable scripts and reload this page.
Turn on more accessible mode
Turn off more accessible mode
Skip Ribbon Commands
Skip to main content
To navigate through the Ribbon, use standard browser navigation keys. To skip between groups, use Ctrl+LEFT or Ctrl+RIGHT. To jump to the first Ribbon tab use Ctrl+[. To jump to the last selected command use Ctrl+]. To activate a command, use Enter.
Site Actions
This page location is:
Ondrej Sevecek's Blog
Ondrej Sevecek's English Pages
Comments
Securing RDWEB with ADFS
Browse
Tab 1 of 2.
View
Tab 2 of 2.
Sign In
Edit
Item
Version History
Manage Permissions
Delete Item
Manage
Ondrej Sevecek's English Pages
Comments
: Securing RDWEB with ADFS
Engineering and troubleshooting by Directory Master!
This Site
This List
Home
Currently selected
Contacts
Quick Posts
Quick Launch
Libraries
Site Pages
Pictures
General
Lists
Links
Posts
Comments
Categories
Quick Posts
Discussions
Surveys
All Site Content
Sorry comments are disable due to the constant load of spam
2
Title
Securing RDWEB with ADFS
Author
Martin Matuska
Body
Hi Ondrej,
I have tried to secure RDWEB with Reverse Proxy. As the RDWEB does not support claims by design, I try to configure NON-CLAIMS APPs on ADFS and set KDC delegation in AD from WAP to Broker. (In my setup is broker / web / gw on the same VM). The reason is I don't want to login twice (ADFS and RDWEB)
When I set SPN for rdweb to computeraccount, everything works. When I tried to run RDWEB not under ApplicationPoolIdentity but under particular user (and preregister SPN from computer to that user) I have got issue with preauthentication. When I bypass WAP, everything works. With ADFS preauth. I am getting error 500:
DOM7011: The code on this page disabled back and forward caching.
Do you have Idea, what can be wring / did you ever try your setup secure with WAP + ADFS?
BTW: On MS I found some howtos, but I did not get point, why they are setting up Claims relaying party trust when claims are not supported on RDWEB.
Attachments
Created at 14/02/2017 14:34 by
Last modified at 14/02/2017 14:34 by